### [CVE-2006-2407](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-2407) ![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen) ### Description Stack-based buffer overflow in (1) WeOnlyDo wodSSHServer ActiveX Component 1.2.7 and 1.3.3 DEMO, as used in other products including (2) FreeSSHd 1.0.9 and (3) freeFTPd 1.0.10, allows remote attackers to execute arbitrary code via a long key exchange algorithm string. ### POC #### Reference - http://marc.info/?l=full-disclosure&m=114764338702488&w=2 - http://securityreason.com/securityalert/901 #### Github No PoCs found on GitHub currently.